Back to bug 1391908

Who When What Removed Added
Andrej Nemec 2016-11-04 11:12:41 UTC Depends On 1391910
Andrej Nemec 2016-11-04 11:17:07 UTC Blocks 1391915
Salvatore Bonaccorso 2016-11-05 16:33:10 UTC CC carnil
Andrej Nemec 2016-11-07 08:51:01 UTC Status NEW CLOSED
Resolution --- CURRENTRELEASE
Last Closed 2016-11-07 03:51:01 UTC
Andrej Nemec 2016-11-07 08:51:26 UTC Status CLOSED NEW
Resolution CURRENTRELEASE ---
Keywords Reopened
Slawomir Czarko 2016-11-07 10:19:11 UTC CC slawomir
Vladis Dronov 2017-01-20 10:31:22 UTC CC vdronov
Doc Text The __get_user_asm_ex macro in arch/x86/include/asm/uaccess.h in the Linux kernel before 4.7.5 does not initialize a certain integer variable, which allows local users to obtain sensitive information from kernel stack memory by triggering failure of a get_user_ex call.
Doc Type If docs needed, set a value Bug Fix
Whiteboard impact=low,public=20160915,reported=20161103,source=oss-security,cvss2=1.9/AV:L/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,rhel-5/kernel=new,rhel-6/kernel=new,rhel-7/kernel=new,rhel-7/kernel-rt=new,mrg-2/realtime-kernel=new,rhelsa-7/arm-kernel=new,fedora-all/kernel=affected impact=low,public=20160915,reported=20161103,source=oss-security,cvss2=1.9/AV:L/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-200,rhel-5/kernel=notaffected,rhel-6/kernel=wontfix,rhel-7/kernel=wontfix,rhel-7/kernel-rt=wontfix,mrg-2/realtime-kernel=wontfix,rhelsa-7/arm-kernel=wontfix,fedora-all/kernel=affected
Vladis Dronov 2017-01-20 10:34:20 UTC Status NEW CLOSED
Resolution --- WONTFIX
Last Closed 2016-11-07 03:51:01 UTC 2017-01-20 05:34:20 UTC
Product Security DevOps Team 2019-09-29 13:59:56 UTC Whiteboard impact=low,public=20160915,reported=20161103,source=oss-security,cvss2=1.9/AV:L/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-200,rhel-5/kernel=notaffected,rhel-6/kernel=wontfix,rhel-7/kernel=wontfix,rhel-7/kernel-rt=wontfix,mrg-2/realtime-kernel=wontfix,rhelsa-7/arm-kernel=wontfix,fedora-all/kernel=affected

Back to bug 1391908